CVE-2015-3062: Critical severity adobe acrobat reader notification manager vulnerability
Adobe Reader and Acrobat 10.x before 10.1.14 and 11.x before 11.0.11 on Windows and OS X allow attackers to bypass intended restrictions on JavaScript API execution via unspecified vectors, a different vulnerability than CVE-2015-3060, CVE-2015-3061, CVE-2015-3063, CVE-2015-3064, CVE-2015-3065, CVE-2015-3066, CVE-2015-3067, CVE-2015-3068, CVE-2015-3069, CVE-2015-3071, CVE-2015-3072, CVE-2015-3073, and CVE-2015-3074.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-3062?
CVE-2015-3062 is rated as a critical vulnerability with the potential to allow execution of arbitrary JavaScript code.
How do I fix CVE-2015-3062?
To fix CVE-2015-3062, update Adobe Reader and Acrobat to the latest versions, specifically versions 10.1.14 or 11.0.11 and above.
What products are affected by CVE-2015-3062?
CVE-2015-3062 affects Adobe Reader and Acrobat versions 10.x before 10.1.14 and 11.x before 11.0.11 on both Windows and macOS.
What type of attack is possible with CVE-2015-3062?
CVE-2015-3062 allows attackers to bypass intended restrictions on JavaScript API execution, potentially leading to malicious actions on the user's system.
Can CVE-2015-3062 be exploited remotely?
Yes, CVE-2015-3062 can be exploited remotely through specially crafted PDF documents containing malicious JavaScript.